okay, dann nochmal vollständig:
Code:
Alles auswählen Aufklappen ATTFilter
11:20:13.0218 2876 TDSS rootkit removing tool 2.7.23.0 Mar 26 2012 13:40:18
11:20:13.0421 2876 ============================================================
11:20:13.0421 2876 Current date / time: 2012/03/28 11:20:13.0421
11:20:13.0421 2876 SystemInfo:
11:20:13.0421 2876
11:20:13.0421 2876 OS Version: 5.1.2600 ServicePack: 3.0
11:20:13.0421 2876 Product type: Workstation
11:20:13.0421 2876 ComputerName: LUKAS
11:20:13.0421 2876 UserName: Admin
11:20:13.0421 2876 Windows directory: C:\WINDOWS
11:20:13.0421 2876 System windows directory: C:\WINDOWS
11:20:13.0421 2876 Processor architecture: Intel x86
11:20:13.0421 2876 Number of processors: 2
11:20:13.0421 2876 Page size: 0x1000
11:20:13.0421 2876 Boot type: Normal boot
11:20:13.0421 2876 ============================================================
11:20:15.0250 2876 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
11:20:15.0265 2876 \Device\Harddisk0\DR0:
11:20:15.0265 2876 MBR used
11:20:15.0265 2876 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4E22CAD
11:20:15.0265 2876 Initialize success
11:20:15.0265 2876 ============================================================
11:20:43.0906 3912 ============================================================
11:20:43.0906 3912 Scan started
11:20:43.0906 3912 Mode: Manual; SigCheck; TDLFS;
11:20:43.0906 3912 ============================================================
11:20:44.0125 3912 Abiosdsk - ok
11:20:44.0125 3912 abp480n5 - ok
11:20:44.0171 3912 ACPI (ac407f1a62c3a300b4f2b5a9f1d55b2c) C:\WINDOWS\system32\DRIVERS\ACPI.sys
11:20:45.0171 3912 ACPI - ok
11:20:45.0218 3912 ACPIEC (9e1ca3160dafb159ca14f83b1e317f75) C:\WINDOWS\system32\drivers\ACPIEC.sys
11:20:45.0343 3912 ACPIEC - ok
11:20:45.0359 3912 adpu160m - ok
11:20:45.0390 3912 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
11:20:45.0484 3912 aec - ok
11:20:45.0531 3912 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
11:20:45.0562 3912 AFD - ok
11:20:45.0562 3912 Aha154x - ok
11:20:45.0578 3912 aic78u2 - ok
11:20:45.0593 3912 aic78xx - ok
11:20:45.0609 3912 Alerter (738d80cc01d7bc7584be917b7f544394) C:\WINDOWS\system32\alrsvc.dll
11:20:45.0718 3912 Alerter - ok
11:20:45.0734 3912 ALG (190cd73d4984f94d823f9444980513e5) C:\WINDOWS\System32\alg.exe
11:20:45.0843 3912 ALG - ok
11:20:45.0843 3912 AliIde - ok
11:20:45.0859 3912 amsint - ok
11:20:45.0859 3912 AppMgmt - ok
11:20:45.0875 3912 asc - ok
11:20:45.0890 3912 asc3350p - ok
11:20:45.0890 3912 asc3550 - ok
11:20:45.0906 3912 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
11:20:46.0015 3912 AsyncMac - ok
11:20:46.0031 3912 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
11:20:46.0140 3912 atapi - ok
11:20:46.0171 3912 AtcL002 (2610034ecd11a675ed2e2601c87961af) C:\WINDOWS\system32\DRIVERS\l251x86.sys
11:20:46.0218 3912 AtcL002 - ok
11:20:46.0234 3912 Atdisk - ok
11:20:46.0265 3912 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
11:20:46.0343 3912 Atmarpc - ok
11:20:46.0390 3912 AudioSrv (58ed0d5452df7be732193e7999c6b9a4) C:\WINDOWS\System32\audiosrv.dll
11:20:46.0484 3912 AudioSrv - ok
11:20:46.0531 3912 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
11:20:46.0640 3912 audstub - ok
11:20:46.0812 3912 AVGIDSAgent (6d440ff3f44ca72edfd6176c6d6a89c0) C:\Programme\AVG\AVG2012\AVGIDSAgent.exe
11:20:46.0984 3912 AVGIDSAgent - ok
11:20:47.0031 3912 AVGIDSDriver (4fa401b33c1b50c816486f6951244a14) C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys
11:20:47.0062 3912 AVGIDSDriver - ok
11:20:47.0078 3912 AVGIDSEH (69578bc9d43d614c6b3455db4af19762) C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys
11:20:47.0093 3912 AVGIDSEH - ok
11:20:47.0109 3912 AVGIDSFilter (6df528406aa22201f392b9b19121cd6f) C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys
11:20:47.0125 3912 AVGIDSFilter - ok
11:20:47.0140 3912 AVGIDSShim (1e01c2166b5599802bcd61b9691f7476) C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys
11:20:47.0140 3912 AVGIDSShim - ok
11:20:47.0156 3912 Avgldx86 (bf8118cd5e2255387b715b534d64acd1) C:\WINDOWS\system32\DRIVERS\avgldx86.sys
11:20:47.0171 3912 Avgldx86 - ok
11:20:47.0187 3912 Avgmfx86 (1c77ef67f196466adc9924cb288afe87) C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
11:20:47.0187 3912 Avgmfx86 - ok
11:20:47.0203 3912 Avgrkx86 (f2038ed7284b79dcef581468121192a9) C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
11:20:47.0203 3912 Avgrkx86 - ok
11:20:47.0234 3912 Avgtdix (a6d562b612216d8d02a35ebeb92366bd) C:\WINDOWS\system32\DRIVERS\avgtdix.sys
11:20:47.0250 3912 Avgtdix - ok
11:20:47.0312 3912 avgwd (6699ece24fe4b3f752a66c66a602ee86) C:\Programme\AVG\AVG2012\avgwdsvc.exe
11:20:47.0328 3912 avgwd - ok
11:20:47.0359 3912 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
11:20:47.0468 3912 Beep - ok
11:20:47.0515 3912 BITS (d6f603772a789bb3228f310d650b8bd1) C:\WINDOWS\system32\qmgr.dll
11:20:47.0625 3912 BITS - ok
11:20:47.0671 3912 Browser (b42057f06bbb98b31876c0b3f2b54e33) C:\WINDOWS\System32\browser.dll
11:20:47.0781 3912 Browser - ok
11:20:47.0812 3912 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
11:20:47.0921 3912 cbidf2k - ok
11:20:47.0921 3912 cd20xrnt - ok
11:20:47.0937 3912 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
11:20:48.0031 3912 Cdaudio - ok
11:20:48.0046 3912 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
11:20:48.0156 3912 Cdfs - ok
11:20:48.0171 3912 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
11:20:48.0281 3912 Cdrom - ok
11:20:48.0281 3912 Changer - ok
11:20:48.0296 3912 CiSvc (28e3040d1f1ca2008cd6b29dfebc9a5e) C:\WINDOWS\system32\cisvc.exe
11:20:48.0390 3912 CiSvc - ok
11:20:48.0421 3912 ClipSrv (778a30ed3c134eb7e406afc407e9997d) C:\WINDOWS\system32\clipsrv.exe
11:20:48.0515 3912 ClipSrv - ok
11:20:48.0515 3912 CmdIde - ok
11:20:48.0531 3912 COMSysApp - ok
11:20:48.0531 3912 Cpqarray - ok
11:20:48.0562 3912 CryptSvc (611f824e5c703a5a899f84c5f1699e4d) C:\WINDOWS\System32\cryptsvc.dll
11:20:48.0656 3912 CryptSvc - ok
11:20:48.0671 3912 CVirtA (b5ecadf7708960f1818c7fa015f4c239) C:\WINDOWS\system32\DRIVERS\CVirtA.sys
11:20:48.0687 3912 CVirtA - ok
11:20:48.0781 3912 CVPND (66257cb4e4fb69887cddc71663741435) C:\Programme\Cisco Systems\VPN Client\cvpnd.exe
11:20:48.0875 3912 CVPND - ok
11:20:48.0890 3912 CVPNDRVA (18994842386fd3039279d7865740abbd) C:\WINDOWS\system32\Drivers\CVPNDRVA.sys
11:20:48.0906 3912 CVPNDRVA ( UnsignedFile.Multi.Generic ) - warning
11:20:48.0906 3912 CVPNDRVA - detected UnsignedFile.Multi.Generic (1)
11:20:48.0921 3912 dac2w2k - ok
11:20:48.0921 3912 dac960nt - ok
11:20:48.0968 3912 DcomLaunch (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\system32\rpcss.dll
11:20:49.0031 3912 DcomLaunch - ok
11:20:49.0062 3912 Dhcp (c29a1c9b75ba38fa37f8c44405dec360) C:\WINDOWS\System32\dhcpcsvc.dll
11:20:49.0140 3912 Dhcp - ok
11:20:49.0156 3912 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
11:20:49.0265 3912 Disk - ok
11:20:49.0265 3912 dmadmin - ok
11:20:49.0312 3912 dmboot (0dcfc8395a99fecbb1ef771cec7fe4ea) C:\WINDOWS\system32\drivers\dmboot.sys
11:20:49.0437 3912 dmboot - ok
11:20:49.0453 3912 dmio (53720ab12b48719d00e327da470a619a) C:\WINDOWS\system32\drivers\dmio.sys
11:20:49.0562 3912 dmio - ok
11:20:49.0578 3912 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
11:20:49.0687 3912 dmload - ok
11:20:49.0703 3912 dmserver (25c83ffbba13b554eb6d59a9b2e2ee78) C:\WINDOWS\System32\dmserver.dll
11:20:49.0796 3912 dmserver - ok
11:20:49.0828 3912 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
11:20:49.0921 3912 DMusic - ok
11:20:49.0953 3912 DNE (b5aa5aa5ac327bd7c1aec0c58f0c1144) C:\WINDOWS\system32\DRIVERS\dne2000.sys
11:20:49.0968 3912 DNE - ok
11:20:50.0000 3912 Dnscache (407f3227ac618fd1ca54b335b083de07) C:\WINDOWS\System32\dnsrslvr.dll
11:20:50.0078 3912 Dnscache - ok
11:20:50.0109 3912 Dot3svc (676e36c4ff5bcea1900f44182b9723e6) C:\WINDOWS\System32\dot3svc.dll
11:20:50.0203 3912 Dot3svc - ok
11:20:50.0203 3912 dpti2o - ok
11:20:50.0218 3912 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
11:20:50.0312 3912 drmkaud - ok
11:20:50.0343 3912 dtsoftbus01 (fb38473835476a6fb272215a1d972af9) C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
11:20:50.0359 3912 dtsoftbus01 - ok
11:20:50.0390 3912 EapHost (4e4f2fddab0a0736d7671134dcce91fb) C:\WINDOWS\System32\eapsvc.dll
11:20:50.0500 3912 EapHost - ok
11:20:50.0531 3912 ERSvc (877c18558d70587aa7823a1a308ac96b) C:\WINDOWS\System32\ersvc.dll
11:20:50.0625 3912 ERSvc - ok
11:20:50.0656 3912 Eventlog (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe
11:20:50.0703 3912 Eventlog - ok
11:20:50.0734 3912 EventSystem (af4f6b5739d18ca7972ab53e091cbc74) C:\WINDOWS\system32\es.dll
11:20:50.0781 3912 EventSystem - ok
11:20:50.0796 3912 EverestDriver - ok
11:20:50.0828 3912 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
11:20:50.0921 3912 Fastfat - ok
11:20:50.0953 3912 FastUserSwitchingCompatibility (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
11:20:51.0015 3912 FastUserSwitchingCompatibility - ok
11:20:51.0031 3912 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\drivers\Fdc.sys
11:20:51.0125 3912 Fdc - ok
11:20:51.0140 3912 Fips (b0678a548587c5f1967b0d70bacad6c1) C:\WINDOWS\system32\drivers\Fips.sys
11:20:51.0234 3912 Fips - ok
11:20:51.0250 3912 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\drivers\Flpydisk.sys
11:20:51.0343 3912 Flpydisk - ok
11:20:51.0375 3912 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
11:20:51.0468 3912 FltMgr - ok
11:20:51.0484 3912 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
11:20:51.0593 3912 Fs_Rec - ok
11:20:51.0609 3912 Ftdisk (8f1955ce42e1484714b542f341647778) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
11:20:51.0718 3912 Ftdisk - ok
11:20:51.0750 3912 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
11:20:51.0843 3912 Gpc - ok
11:20:51.0875 3912 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
11:20:51.0968 3912 HDAudBus - ok
11:20:51.0984 3912 helpsvc (cb66bf85bf599befd6c6a57c2e20357f) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
11:20:52.0093 3912 helpsvc - ok
11:20:52.0093 3912 HidServ - ok
11:20:52.0109 3912 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
11:20:52.0203 3912 hidusb - ok
11:20:52.0234 3912 hkmsvc (ed29f14101523a6e0e808107405d452c) C:\WINDOWS\System32\kmsvc.dll
11:20:52.0328 3912 hkmsvc - ok
11:20:52.0328 3912 hpn - ok
11:20:52.0375 3912 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
11:20:52.0406 3912 HTTP - ok
11:20:52.0437 3912 HTTPFilter (9e4adb854cebcfb81a4b36718feecd16) C:\WINDOWS\System32\w3ssl.dll
11:20:52.0531 3912 HTTPFilter - ok
11:20:52.0546 3912 i2omgmt - ok
11:20:52.0546 3912 i2omp - ok
11:20:52.0562 3912 i8042prt (e283b97cfbeb86c1d86baed5f7846a92) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
11:20:52.0656 3912 i8042prt - ok
11:20:52.0703 3912 ialm (6fcb904910da07c9dc2593d66438fa29) C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
11:20:52.0781 3912 ialm - ok
11:20:52.0796 3912 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
11:20:52.0890 3912 Imapi - ok
11:20:52.0921 3912 ImapiService (d4b413aa210c21e46aedd2ba5b68d38e) C:\WINDOWS\system32\imapi.exe
11:20:53.0031 3912 ImapiService - ok
11:20:53.0031 3912 ini910u - ok
11:20:53.0187 3912 IntcAzAudAddService (41ef008d7b089ce6f5f2e4a61d5638e6) C:\WINDOWS\system32\drivers\RtkHDAud.sys
11:20:53.0406 3912 IntcAzAudAddService - ok
11:20:53.0437 3912 IntelIde - ok
11:20:53.0468 3912 intelppm (4c7d2750158ed6e7ad642d97bffae351) C:\WINDOWS\system32\DRIVERS\intelppm.sys
11:20:53.0578 3912 intelppm - ok
11:20:53.0578 3912 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
11:20:53.0687 3912 Ip6Fw - ok
11:20:53.0718 3912 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
11:20:53.0812 3912 IpFilterDriver - ok
11:20:53.0828 3912 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
11:20:54.0031 3912 IpInIp - ok
11:20:54.0046 3912 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
11:20:54.0140 3912 IpNat - ok
11:20:54.0156 3912 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
11:20:54.0265 3912 IPSec - ok
11:20:54.0328 3912 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
11:20:54.0421 3912 IRENUM - ok
11:20:54.0468 3912 isapnp (6dfb88f64135c525433e87648bda30de) C:\WINDOWS\system32\DRIVERS\isapnp.sys
11:20:54.0562 3912 isapnp - ok
11:20:54.0625 3912 JavaQuickStarterService (973db7ac74c554c546f8b0b7b98fb855) C:\Programme\Java\jre7\bin\jqs.exe
11:20:54.0625 3912 JavaQuickStarterService - ok
11:20:54.0656 3912 Kbdclass (1704d8c4c8807b889e43c649b478a452) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
11:20:54.0750 3912 Kbdclass - ok
11:20:54.0765 3912 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
11:20:54.0875 3912 kmixer - ok
11:20:54.0890 3912 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
11:20:54.0937 3912 KSecDD - ok
11:20:54.0953 3912 lanmanserver (2bbdcb79900990f0716dfcb714e72de7) C:\WINDOWS\System32\srvsvc.dll
11:20:55.0015 3912 lanmanserver - ok
11:20:55.0031 3912 lanmanworkstation (1869b14b06b44b44af70548e1ea3303f) C:\WINDOWS\System32\wkssvc.dll
11:20:55.0046 3912 lanmanworkstation - ok
11:20:55.0062 3912 lbrtfdc - ok
11:20:55.0078 3912 LmHosts (636714b7d43c8d0c80449123fd266920) C:\WINDOWS\System32\lmhsvc.dll
11:20:55.0171 3912 LmHosts - ok
11:20:55.0187 3912 Messenger (b7550a7107281d170ce85524b1488c98) C:\WINDOWS\System32\msgsvc.dll
11:20:55.0296 3912 Messenger - ok
11:20:55.0343 3912 Microsoft Office Groove Audit Service (fafe367d032ed82e9332b4c741a20216) C:\Programme\Microsoft Office\Office12\GrooveAuditService.exe
11:20:55.0359 3912 Microsoft Office Groove Audit Service - ok
11:20:55.0390 3912 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
11:20:55.0500 3912 mnmdd - ok
11:20:55.0531 3912 mnmsrvc (c2f1d365fd96791b037ee504868065d3) C:\WINDOWS\system32\mnmsrvc.exe
11:20:55.0625 3912 mnmsrvc - ok
11:20:55.0656 3912 Modem (6fb74ebd4ec57a6f1781de3852cc3362) C:\WINDOWS\system32\drivers\Modem.sys
11:20:55.0765 3912 Modem - ok
11:20:55.0781 3912 Mouclass (b24ce8005deab254c0251e15cb71d802) C:\WINDOWS\system32\DRIVERS\mouclass.sys
11:20:55.0875 3912 Mouclass - ok
11:20:55.0906 3912 mouhid (66a6f73c74e1791464160a7065ce711a) C:\WINDOWS\system32\DRIVERS\mouhid.sys
11:20:56.0015 3912 mouhid - ok
11:20:56.0031 3912 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
11:20:56.0140 3912 MountMgr - ok
11:20:56.0140 3912 mraid35x - ok
11:20:56.0156 3912 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
11:20:56.0265 3912 MRxDAV - ok
11:20:56.0296 3912 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
11:20:56.0343 3912 MRxSmb - ok
11:20:56.0375 3912 MSDTC (35a031af38c55f92d28aa03ee9f12cc9) C:\WINDOWS\system32\msdtc.exe
11:20:56.0484 3912 MSDTC - ok
11:20:56.0484 3912 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
11:20:56.0578 3912 Msfs - ok
11:20:56.0578 3912 MSIServer - ok
11:20:56.0609 3912 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
11:20:56.0687 3912 MSPCLOCK - ok
11:20:56.0703 3912 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
11:20:56.0796 3912 mssmbios - ok
11:20:56.0828 3912 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys
11:20:56.0843 3912 MTsensor - ok
11:20:56.0859 3912 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
11:20:56.0890 3912 Mup - ok
11:20:56.0921 3912 napagent (46bb15ae2ac7d025d6d2567b876817bd) C:\WINDOWS\System32\qagentrt.dll
11:20:57.0031 3912 napagent - ok
11:20:57.0062 3912 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
11:20:57.0156 3912 NDIS - ok
11:20:57.0187 3912 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
11:20:57.0234 3912 NdisTapi - ok
11:20:57.0265 3912 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
11:20:57.0359 3912 Ndisuio - ok
11:20:57.0359 3912 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:20:57.0468 3912 NdisWan - ok
11:20:57.0484 3912 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
11:20:57.0531 3912 NDProxy - ok
11:20:57.0546 3912 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
11:20:57.0640 3912 NetBIOS - ok
11:20:57.0671 3912 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
11:20:57.0765 3912 NetBT - ok
11:20:57.0796 3912 NetDDE (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe
11:20:57.0890 3912 NetDDE - ok
11:20:57.0906 3912 NetDDEdsdm (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe
11:20:57.0984 3912 NetDDEdsdm - ok
11:20:58.0015 3912 Netlogon (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
11:20:58.0125 3912 Netlogon - ok
11:20:58.0140 3912 Netman (e6d88f1f6745bf00b57e7855a2ab696c) C:\WINDOWS\System32\netman.dll
11:20:58.0234 3912 Netman - ok
11:20:58.0265 3912 Nla (f1b67b6b0751ae0e6e964b02821206a3) C:\WINDOWS\System32\mswsock.dll
11:20:58.0312 3912 Nla - ok
11:20:58.0343 3912 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
11:20:58.0437 3912 Npfs - ok
11:20:58.0468 3912 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
11:20:58.0593 3912 Ntfs - ok
11:20:58.0593 3912 NtLmSsp (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
11:20:58.0671 3912 NtLmSsp - ok
11:20:58.0703 3912 NtmsSvc (56af4064996fa5bac9c449b1514b4770) C:\WINDOWS\system32\ntmssvc.dll
11:20:58.0812 3912 NtmsSvc - ok
11:20:58.0843 3912 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
11:20:58.0953 3912 Null - ok
11:20:58.0968 3912 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
11:20:59.0078 3912 NwlnkFlt - ok
11:20:59.0078 3912 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
11:20:59.0187 3912 NwlnkFwd - ok
11:20:59.0265 3912 odserv (84de1dd996b48b05ace31ad015fa108a) C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE
11:20:59.0281 3912 odserv - ok
11:20:59.0312 3912 ose (5a432a042dae460abe7199b758e8606c) C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE
11:20:59.0328 3912 ose - ok
11:20:59.0359 3912 Parport (f84785660305b9b903fb3bca8ba29837) C:\WINDOWS\system32\DRIVERS\parport.sys
11:20:59.0468 3912 Parport - ok
11:20:59.0484 3912 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
11:20:59.0578 3912 PartMgr - ok
11:20:59.0625 3912 ParVdm (c2bf987829099a3eaa2ca6a0a90ecb4f) C:\WINDOWS\system32\drivers\ParVdm.sys
11:20:59.0718 3912 ParVdm - ok
11:20:59.0734 3912 PCI (387e8dedc343aa2d1efbc30580273acd) C:\WINDOWS\system32\DRIVERS\pci.sys
11:20:59.0828 3912 PCI - ok
11:20:59.0828 3912 PCIDump - ok
11:20:59.0859 3912 PCIIde (59ba86d9a61cbcf4df8e598c331f5b82) C:\WINDOWS\system32\DRIVERS\pciide.sys
11:20:59.0968 3912 PCIIde - ok
11:21:00.0000 3912 Pcmcia (a2a966b77d61847d61a3051df87c8c97) C:\WINDOWS\system32\drivers\Pcmcia.sys
11:21:00.0093 3912 Pcmcia - ok
11:21:00.0109 3912 PDCOMP - ok
11:21:00.0109 3912 PDFRAME - ok
11:21:00.0125 3912 PDRELI - ok
11:21:00.0140 3912 PDRFRAME - ok
11:21:00.0140 3912 perc2 - ok
11:21:00.0156 3912 perc2hib - ok
11:21:00.0203 3912 PlugPlay (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe
11:21:00.0234 3912 PlugPlay - ok
11:21:00.0265 3912 PolicyAgent (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
11:21:00.0343 3912 PolicyAgent - ok
11:21:00.0359 3912 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
11:21:00.0468 3912 PptpMiniport - ok
11:21:00.0468 3912 ProtectedStorage (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
11:21:00.0562 3912 ProtectedStorage - ok
11:21:00.0562 3912 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
11:21:00.0671 3912 PSched - ok
11:21:00.0671 3912 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
11:21:00.0781 3912 Ptilink - ok
11:21:00.0781 3912 ql1080 - ok
11:21:00.0796 3912 Ql10wnt - ok
11:21:00.0812 3912 ql12160 - ok
11:21:00.0812 3912 ql1240 - ok
11:21:00.0828 3912 ql1280 - ok
11:21:00.0843 3912 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
11:21:00.0953 3912 RasAcd - ok
11:21:00.0984 3912 RasAuto (f5ba6caccdb66c8f048e867563203246) C:\WINDOWS\System32\rasauto.dll
11:21:01.0078 3912 RasAuto - ok
11:21:01.0109 3912 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
11:21:01.0187 3912 Rasl2tp - ok
11:21:01.0218 3912 RasMan (f9a7b66ea345726edb5862a46b1eccd5) C:\WINDOWS\System32\rasmans.dll
11:21:01.0328 3912 RasMan - ok
11:21:01.0343 3912 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
11:21:01.0437 3912 RasPppoe - ok
11:21:01.0453 3912 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
11:21:01.0562 3912 Raspti - ok
11:21:01.0593 3912 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
11:21:01.0671 3912 Rdbss - ok
11:21:01.0687 3912 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
11:21:01.0796 3912 RDPCDD - ok
11:21:01.0828 3912 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys
11:21:01.0875 3912 RDPWD - ok
11:21:01.0906 3912 RDSessMgr (263af18af0f3db99f574c95f284ccec9) C:\WINDOWS\system32\sessmgr.exe
11:21:02.0000 3912 RDSessMgr - ok
11:21:02.0015 3912 redbook (ed761d453856f795a7fe056e42c36365) C:\WINDOWS\system32\DRIVERS\redbook.sys
11:21:02.0125 3912 redbook - ok
11:21:02.0140 3912 RemoteAccess (0e97ec96d6942ceec2d188cc2eb69a01) C:\WINDOWS\System32\mprdim.dll
11:21:02.0250 3912 RemoteAccess - ok
11:21:02.0281 3912 RpcLocator (2a02e21867497df20b8fc95631395169) C:\WINDOWS\system32\locator.exe
11:21:02.0375 3912 RpcLocator - ok
11:21:02.0406 3912 RpcSs (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\system32\rpcss.dll
11:21:02.0468 3912 RpcSs - ok
11:21:02.0500 3912 RSVP (4bdd71b4b521521499dfd14735c4f398) C:\WINDOWS\system32\rsvp.exe
11:21:02.0593 3912 RSVP - ok
11:21:02.0625 3912 SamSs (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
11:21:02.0703 3912 SamSs - ok
11:21:02.0718 3912 SCardSvr (dcec079fad95d36c8dd5cb6d779dfe32) C:\WINDOWS\System32\SCardSvr.exe
11:21:02.0828 3912 SCardSvr - ok
11:21:02.0859 3912 Schedule (a050194a44d7fa8d7186ed2f4e8367ae) C:\WINDOWS\system32\schedsvc.dll
11:21:02.0968 3912 Schedule - ok
11:21:03.0000 3912 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
11:21:03.0078 3912 Secdrv - ok
11:21:03.0125 3912 seclogon (bee4cfd1d48c23b44cf4b974b0b79b2b) C:\WINDOWS\System32\seclogon.dll
11:21:03.0203 3912 seclogon - ok
11:21:03.0234 3912 SENS (2aac9b6ed9eddffb721d6452e34d67e3) C:\WINDOWS\system32\sens.dll
11:21:03.0328 3912 SENS - ok
11:21:03.0343 3912 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
11:21:03.0437 3912 serenum - ok
11:21:03.0484 3912 Serial (cf24eb4f0412c82bcd1f4f35a025e31d) C:\WINDOWS\system32\DRIVERS\serial.sys
11:21:03.0562 3912 Serial - ok
11:21:03.0593 3912 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
11:21:03.0687 3912 Sfloppy - ok
11:21:03.0703 3912 SharedAccess (cad058d5f8b889a87ca3eb3cf624dcef) C:\WINDOWS\System32\ipnathlp.dll
11:21:03.0812 3912 SharedAccess - ok
11:21:03.0859 3912 ShellHWDetection (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
11:21:03.0875 3912 ShellHWDetection - ok
11:21:03.0890 3912 Simbad - ok
11:21:03.0890 3912 Sparrow - ok
11:21:03.0937 3912 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
11:21:04.0031 3912 splitter - ok
11:21:04.0046 3912 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
11:21:04.0093 3912 Spooler - ok
11:21:04.0109 3912 sr (50fa898f8c032796d3b1b9951bb5a90f) C:\WINDOWS\system32\DRIVERS\sr.sys
11:21:04.0218 3912 sr - ok
11:21:04.0250 3912 srservice (fe77a85495065f3ad59c5c65b6c54182) C:\WINDOWS\system32\srsvc.dll
11:21:04.0343 3912 srservice - ok
11:21:04.0375 3912 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
11:21:04.0421 3912 Srv - ok
11:21:04.0437 3912 SSDPSRV (4df5b05dfaec29e13e1ed6f6ee12c500) C:\WINDOWS\System32\ssdpsrv.dll
11:21:04.0531 3912 SSDPSRV - ok
11:21:04.0546 3912 stisvc (bc2c5985611c5356b24aeb370953ded9) C:\WINDOWS\system32\wiaservc.dll
11:21:04.0656 3912 stisvc - ok
11:21:04.0703 3912 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
11:21:04.0796 3912 swenum - ok
11:21:04.0843 3912 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
11:21:04.0937 3912 swmidi - ok
11:21:04.0953 3912 SwPrv - ok
11:21:04.0953 3912 symc810 - ok
11:21:04.0968 3912 symc8xx - ok
11:21:04.0984 3912 sym_hi - ok
11:21:04.0984 3912 sym_u3 - ok
11:21:05.0015 3912 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
11:21:05.0093 3912 sysaudio - ok
11:21:05.0125 3912 SysmonLog (2903fffa2523926d6219428040dce6b9) C:\WINDOWS\system32\smlogsvc.exe
11:21:05.0218 3912 SysmonLog - ok
11:21:05.0234 3912 TapiSrv (05903cac4b98908d55ea5774775b382e) C:\WINDOWS\System32\tapisrv.dll
11:21:05.0328 3912 TapiSrv - ok
11:21:05.0562 3912 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
11:21:05.0609 3912 Tcpip - ok
11:21:05.0703 3912 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
11:21:05.0781 3912 TDPIPE - ok
11:21:05.0812 3912 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
11:21:05.0906 3912 TDTCP - ok
11:21:05.0937 3912 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
11:21:06.0046 3912 TermDD - ok
11:21:06.0078 3912 TermService (b7de02c863d8f5a005a7bf375375a6a4) C:\WINDOWS\System32\termsrv.dll
11:21:06.0187 3912 TermService - ok
11:21:06.0218 3912 Themes (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
11:21:06.0234 3912 Themes - ok
11:21:06.0250 3912 TosIde - ok
11:21:06.0265 3912 TrkWks (626504572b175867f30f3215c04b3e2f) C:\WINDOWS\system32\trkwks.dll
11:21:06.0359 3912 TrkWks - ok
11:21:06.0375 3912 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
11:21:06.0468 3912 Udfs - ok
11:21:06.0484 3912 ultra - ok
11:21:06.0531 3912 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
11:21:06.0640 3912 Update - ok
11:21:06.0656 3912 upnphost (1dfd8975d8c89214b98d9387c1125b49) C:\WINDOWS\System32\upnphost.dll
11:21:06.0765 3912 upnphost - ok
11:21:06.0781 3912 UPS (9b11e6118958e63e1fef129466e2bda7) C:\WINDOWS\System32\ups.exe
11:21:06.0875 3912 UPS - ok
11:21:06.0921 3912 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
11:21:07.0015 3912 usbccgp - ok
11:21:07.0031 3912 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
11:21:07.0140 3912 usbehci - ok
11:21:07.0171 3912 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
11:21:07.0281 3912 usbhub - ok
11:21:07.0281 3912 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
11:21:07.0375 3912 usbprint - ok
11:21:07.0437 3912 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
11:21:07.0546 3912 usbscan - ok
11:21:07.0640 3912 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
11:21:07.0750 3912 USBSTOR - ok
11:21:07.0921 3912 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
11:21:08.0031 3912 usbuhci - ok
11:21:08.0218 3912 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
11:21:08.0343 3912 VgaSave - ok
11:21:08.0375 3912 ViaIde - ok
11:21:08.0390 3912 VolSnap (a5a712f4e880874a477af790b5186e1d) C:\WINDOWS\system32\drivers\VolSnap.sys
11:21:08.0484 3912 VolSnap - ok
11:21:08.0515 3912 vsdatant (0354ba3a5ba5e28cc247eb5f5dd8793c) C:\WINDOWS\system32\vsdatant.sys
11:21:08.0546 3912 vsdatant - ok
11:21:08.0593 3912 VSS (68f106273be29e7b7ef8266977268e78) C:\WINDOWS\System32\vssvc.exe
11:21:08.0687 3912 VSS - ok
11:21:08.0718 3912 W32Time (7b353059e665f8b7ad2bbeaef597cf45) C:\WINDOWS\system32\w32time.dll
11:21:08.0828 3912 W32Time - ok
11:21:08.0843 3912 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:21:08.0937 3912 Wanarp - ok
11:21:08.0937 3912 WDICA - ok
11:21:08.0953 3912 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
11:21:09.0062 3912 wdmaud - ok
11:21:09.0093 3912 WebClient (81727c9873e3905a2ffc1ebd07265002) C:\WINDOWS\System32\webclnt.dll
11:21:09.0187 3912 WebClient - ok
11:21:09.0218 3912 winmgmt (6f3f3973d97714cc5f906a19fe883729) C:\WINDOWS\system32\wbem\WMIsvc.dll
11:21:09.0328 3912 winmgmt - ok
11:21:09.0359 3912 WmdmPmSN (6e18978b749f0696a774de3f2cb142dd) C:\WINDOWS\system32\mspmsnsv.dll
11:21:09.0437 3912 WmdmPmSN - ok
11:21:09.0468 3912 WmiApSrv (93908111ba57a6e60ec2fa2de202105c) C:\WINDOWS\system32\wbem\wmiapsrv.exe
11:21:09.0562 3912 WmiApSrv - ok
11:21:09.0593 3912 wscsvc (300b3e84faf1a5c1f791c159ba28035d) C:\WINDOWS\system32\wscsvc.dll
11:21:09.0687 3912 wscsvc - ok
11:21:09.0703 3912 wuauserv (7b4fe05202aa6bf9f4dfd0e6a0d8a085) C:\WINDOWS\system32\wuauserv.dll
11:21:09.0812 3912 wuauserv - ok
11:21:09.0843 3912 WZCSVC (c4f109c005f6725162d2d12ca751e4a7) C:\WINDOWS\System32\wzcsvc.dll
11:21:09.0953 3912 WZCSVC - ok
11:21:09.0968 3912 xmlprov (0ada34871a2e1cd2caafed1237a47750) C:\WINDOWS\System32\xmlprov.dll
11:21:10.0078 3912 xmlprov - ok
11:21:10.0093 3912 MBR (0x1B8) (72b8ce41af0de751c946802b3ed844b4) \Device\Harddisk0\DR0
11:21:10.0468 3912 \Device\Harddisk0\DR0 - ok
11:21:10.0468 3912 Boot (0x1200) (0cdf9ab2389e8df93d084c26b281e56f) \Device\Harddisk0\DR0\Partition0
11:21:10.0468 3912 \Device\Harddisk0\DR0\Partition0 - ok
11:21:10.0468 3912 ============================================================
11:21:10.0468 3912 Scan finished
11:21:10.0468 3912 ============================================================
11:21:10.0593 3004 Detected object count: 1
11:21:10.0593 3004 Actual detected object count: 1
11:25:11.0062 3004 CVPNDRVA ( UnsignedFile.Multi.Generic ) - skipped by user
11:25:11.0062 3004 CVPNDRVA ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:01.0375 3900 Deinitialize success